cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1619
Views
5
Helpful
2
Replies

Login Problem at IOS-XR(ASR9010)

wuyian2012
Level 1
Level 1

The IOS device has a command of 

login block-for 60 attempts 3 within 10  and login on-failure log every 3 
if i want do it in the IOS-XR device

i can't find the command in the Config Guid

what command can support this function for me

Thanks

1 Accepted Solution

Accepted Solutions

smilstea
Cisco Employee
Cisco Employee

XR does not support either of these commands, however we do log all failures in syslog and XR has a separate management plane so you should not be getting too many brute force attempts.

However, if you are, or even are not, then I would recommend using MPP (http://www.cisco.com/c/en/us/td/docs/routers/asr9000/software/asr9k_r5-1/security/configuration/guide/b_syssec_cg51xasr9k/b_syssec_cg51xasr9k_chapter_0110.html) as MPP will send a TCP reset instead of establishing a connection for login if the IP address or incoming interface is not in the specified values.

 

 

Thanks,

Sam

View solution in original post

2 Replies 2

smilstea
Cisco Employee
Cisco Employee

XR does not support either of these commands, however we do log all failures in syslog and XR has a separate management plane so you should not be getting too many brute force attempts.

However, if you are, or even are not, then I would recommend using MPP (http://www.cisco.com/c/en/us/td/docs/routers/asr9000/software/asr9k_r5-1/security/configuration/guide/b_syssec_cg51xasr9k/b_syssec_cg51xasr9k_chapter_0110.html) as MPP will send a TCP reset instead of establishing a connection for login if the IP address or incoming interface is not in the specified values.

 

 

Thanks,

Sam

If among right range IP have some abnormal IP behavior, how should I do?

Thank you very much.